[Secure-testing-commits] r44443 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 9 07:20:43 UTC 2016


Author: carnil
Date: 2016-09-09 07:20:43 +0000 (Fri, 09 Sep 2016)
New Revision: 44443

Modified:
   data/CVE/list
Log:
Add CVE-2016-7169/wordpress

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-09 07:18:57 UTC (rev 44442)
+++ data/CVE/list	2016-09-09 07:20:43 UTC (rev 44443)
@@ -8,8 +8,11 @@
 	RESERVED
 CVE-2016-7170
 	RESERVED
-CVE-2016-7169
+CVE-2016-7169 [a path traversal vulnerability in the upgrade package uploader]
 	RESERVED
+	- wordpress <unfixed>
+	NOTE: https://wordpress.org/news/2016/09/wordpress-4-6-1-security-and-maintenance-release/
+	NOTE: Fixed in 4.6.1 release upstream
 CVE-2016-7168 [a cross-site scripting vulnerability via image filename]
 	RESERVED
 	- wordpress <unfixed>




More information about the Secure-testing-commits mailing list